New DMU research on using AI to spot cyber-attacks shows that developers must focus on efficacy across data sets rather than on accuracy alone.
A team from De Montfort University Leicester (DMU) has published new research exploring how artificial intelligence can be used more effectively to identify a disruptive and damaging form of cyber-attack.
Distributed Denial-of-Service attacks, (DDoS) attacks happen when bad actors, including cybercriminals and hacktivists, overwhelm websites, networks or online services with waves of malicious traffic, making them unavailable to legitimate users.
The UK’s National Cyber Security Centre (NCSC) has repeatedly warned of the growing threat posed by DDoS attacks, including campaigns by pro-Russian hacktivist groups such as "NoName05716" that have been targeting British organisations and critical infrastructure.

Now, DMU postgraduate data analytics student Adrian Kwiecien, and Waddah Saeed, a Senior Lecturer in Data Analytics at DMU, have investigated whether AI models can reliably detect such cyber-attacks quickly and efficiently enough to be used in real-world environments.
Using a major cybersecurity dataset, CICDDoS2019, their recently published research evaluated 210 different machine-learning pipelines. These combined five popular AI classifiers, three feature-selection methods, two tuning approaches and seven different training and testing splits.
Unlike many previous studies, the research looked beyond standard accuracy scores. It also measured practical factors such as training time, inference time, CPU usage and memory consumption.
Waddah Saeed explained: “The strongest overall pipeline used a Decision Tree classifier with Recursive Feature Elimination and Grid Search tuning. It achieved an excellent balance between detection performance and low computational cost, making it a promising option for environments where resources may be limited.
“Our research also found that tree-based machine-learning models generally offered the best trade-off between accuracy, speed and interpretability. This is important because cybersecurity teams need systems that are not only effective, but also understandable and manageable in practice.”
However, the study also found that when the best-performing model was tested on a separate dataset, its performance dropped significantly. This suggests that AI models used for cyber-attack detection may struggle when faced with different real-world network conditions.

The findings underline the need for more realistic evaluation of AI-based cybersecurity tools before deployment. Rather than focusing on accuracy alone, developers and organisations should assess whether models are fast, efficient, scalable and reliable across different datasets.
The study provides practical guidance for researchers, cybersecurity professionals and organisations developing machine-learning systems to defend against DDoS attacks.
The research paper can be seen in full here: https://www.mdpi.com/2297-8747/31/2/62
Posted on Tuesday 12 May 2026
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | New DMU research shows how AI soil monitoring could help farmers make every drop count in a warming world | 0 | 7.56 | 31-07-2026 |
| 2 | DMU researchers join international quantum and AI initiative | 0 | 5.38 | 29-05-2026 |
| 3 | A Flaw in ChatGPT’s Mac App Could Have Let Hackers Grab Sensitive Data | 0 | 7.66 | 02-10-2026 |
| 4 | DMU research uses grey-fuzzy framework to tackle 'black box' problem in AI predictions of rock permeability | 0 | 10.88 | 04-08-2026 |
| 5 | OpenAI’s agents obscured hacking activity in government site breaches | 0 | 10 | 01-10-2026 |
| 6 | Баги от ума // ИИ помог выявить на 48% больше подтвержденных уязвимостей в инфраструктуре | 1 | 15.04 | 06-10-2026 |
| 7 | Machine vs. machine: The new reality of cybersecurity in ANZ | 0 | 7.56 | 26-08-2026 |
| 8 | The SOC Doesn't Need to Start Over with Every Alert | 0 | 8.65 | 25-09-2026 |
| 9 | Researchers found AI agents attempting to hack a Canadian government website | 0 | 10 | 05-10-2026 |